Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell PowerFlex Manager 4.6.x CLI Reference Guide

PDF

Create file LDAP servers

Create an LDAP service on a PowerFlex file node. Only one LDAP service object can be created per PowerFlex file node.

Syntax

powerflex_cli file-ldap-servers create [parameters]

Parameters

-h, --help
Help for creating file LDAP servers.
--addresses [string]
The list of LDAP server IP addresses. The addresses may be IPv4 or IPv6.
--authentication_type [string]
Authentication type for the LDAP server. Options are:
  • ANONYMOUS—ANONYMOUS authentication means no authentication occurs and the PowerFlex file node uses an anonymous login to access the LDAP-based directory server.
  • SIMPLE—SIMPLE authentication means the PowerFlex file node must provide a bind distinguished name and password to access the LDAP-based directory server.
  • KERBEROS—KERBEROS authentication means the PowerFlex file node uses a KDC to confirm the identity when accessing the Active Directory. (ANONYMOUS,SIMPLE,KERBEROS)
--base_DN [string]
Name of the LDAP base DN. Base distinguished name (BDN) of the root of the LDAP directory tree. The appliance uses the DN to bind to the LDAP service and locate in the LDAP directory tree to begin a search for information. The base DN can be expressed as a fully-qualified domain name or in X.509 format by using the attribute dc=. For example, if the fully-qualified domain name is mycompany.com, the base DN is expressed as dc=mycompany,dc=com.
--bind_DN [string]
Bind distinguished name (DN) to be used when binding.
--bind_password [string]
The associated password to be used when binding to the server.
--is_smb_account_used [string]
Indicates whether SMB authentication is used to authenticate to the LDAP server. Values are:
  • True—Indicates that the SMB settings are used for Kerberos authentication.
  • False—Indicates that Kerberos uses its own settings.
--is_verify_server_certificate [string]
Indicates whether certification authority certificate is used to verify the LDAP server certificate for secure SSL connections. Values are:
  • True—verifies the certificate of the LDAP server.
  • False—does not verify the certificate of the LDAP server.
--nas_server_id [string]
Unique identifier of the associated PowerFlex file node instance that will use this LDAP object. Only one LDAP object per PowerFlex file node is supported.
--password [string]
The associated password for Kerberos authentication.
--port_number [int32]
The TCP/IP port used by the PowerFlex file node to connect to the LDAP servers. The default port number for LDAP is 389 and LDAPS is 636.
--principal [string]
Specifies the principal name for Kerberos authentication.
--profile_DN [string]
For an iPlanet LDAP server, specifies the DN of the entry with the configuration profile.
--protocol [string]
Indicates whether the LDAP protocol uses SSL for secure network communication. SSL encrypts data over the network and provides message and server authentication.
  • LDAP - LDAP protocol without SSL.
  • LDAPS - (Default) LDAP protocol with SSL. When you enable LDAPS, make sure to specify the appropriate LDAPS port (usually port 636) and to upload an LDAPS trust certificate to the LDAP server. (LDAP,LDAPS)
--realm [string]
Specifies the realm name for Kerberos authentication.
--session name [string]
Session name. The default name is "default".
--session token [string]
Secret session token.

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\